Cisco / Elastic Services Controller
19 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2021-1312 | Cisco Elastic Services Controller Denial of Service Vulnerability | HIGH | 7.5 | Jan 20, 2021 |
| CVE-2019-1867 | Cisco Elastic Services Controller REST API Authentication Bypass Vulnerability | CRITICAL | 10.0 | May 10, 2019 |
| CVE-2018-0121 | A vulnerability in the authentication functionality of the web-based service portal of Cisco Elastic Services Controller Software could allow an unauthenticate… | CRITICAL | 9.8 | Feb 22, 2018 |
| CVE-2018-0106 | A vulnerability in the ConfD server of the Cisco Elastic Services Controller (ESC) could allow an unauthenticated, local attacker to access sensitive informati… | LOW | 3.3 | Jan 18, 2018 |
| CVE-2017-6786 | A vulnerability in Cisco Elastic Services Controller could allow an authenticated, local, unprivileged attacker to access sensitive information, including cred… | MEDIUM | 6.3 | Aug 17, 2017 |
| CVE-2017-6777 | A vulnerability in the ConfD server of the Cisco Elastic Services Controller (ESC) could allow an authenticated, remote attacker to acquire sensitive system in… | MEDIUM | 4.9 | Aug 17, 2017 |
| CVE-2017-6776 | A vulnerability in the web framework of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to conduct a cross-site scripti… | MEDIUM | 6.1 | Aug 17, 2017 |
| CVE-2017-6772 | A vulnerability in Cisco Elastic Services Controller (ESC) could allow an authenticated, remote attacker to view sensitive information. The vulnerability is du… | MEDIUM | 4.3 | Aug 17, 2017 |
| CVE-2017-6713 | A vulnerability in the Play Framework of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote attacker to gain full access to the aff… | CRITICAL | 9.8 | Jul 6, 2017 |
| CVE-2017-6712 | A vulnerability in certain commands of Cisco Elastic Services Controller could allow an authenticated, remote attacker to elevate privileges to root and run da… | HIGH | 8.8 | Jul 6, 2017 |
| CVE-2017-6697 | A vulnerability in the web interface of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to access sensitive system credentials… | MEDIUM | 6.5 | Jun 13, 2017 |
| CVE-2017-6696 | A vulnerability in the file system of Cisco Elastic Services Controllers could allow an authenticated, local attacker to gain access to sensitive user credenti… | MEDIUM | 5.5 | Jun 13, 2017 |
| CVE-2017-6693 | A vulnerability in the ConfD server component of Cisco Elastic Services Controllers could allow an authenticated, local attacker to access information stored i… | MEDIUM | 5.5 | Jun 13, 2017 |
| CVE-2017-6691 | A vulnerability in the ConfD CLI of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to access sensitive information on an affe… | MEDIUM | 6.5 | Jun 13, 2017 |
| CVE-2017-6689 | A vulnerability in the ConfD CLI of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to log in to an affected system as the adm… | HIGH | 8.8 | Jun 13, 2017 |
| CVE-2017-6688 | A vulnerability in Cisco Elastic Services Controllers could allow an authenticated, remote attacker to log in to an affected system as the Linux root user, aka… | HIGH | 8.8 | Jun 13, 2017 |
| CVE-2017-6684 | A vulnerability in Cisco Elastic Services Controllers could allow an authenticated, remote attacker to log in to an affected system as the Linux admin user, ak… | HIGH | 8.8 | Jun 13, 2017 |
| CVE-2017-6683 | A vulnerability in the esc_listener.py script of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to execute arbitrary commands… | HIGH | 8.8 | Jun 13, 2017 |
| CVE-2017-6682 | A vulnerability in the ConfD CLI of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to run arbitrary commands as the Linux tom… | HIGH | 8.8 | Jun 13, 2017 |
Showing 1 to 19 of 19 CVEs